![]() |
|
#1
| ||||||||||||
| ||||||||||||
| Cleaner is showing uninst.exe at startup can i search for it and delite it or is it needed? i googled it and am getting spywear related but this is a 3 days old fresh install of vista ultimate!
__________________
__________________
My System: P*L*A*Z*M*A
|
|
#2
| ||||||||||||
| ||||||||||||
| Hi That file can be legit or malware. It is often used as an uninstaller. It's all dependent on location - what is the full path to the file?
__________________
__________________
Iain - Defender of the Haggis Member of ASAP : : Member of UNITE My System: It's all mine...
|
|
#3
| ||||||||||||
| ||||||||||||
| After a system restart is the file still there?
__________________
My System: Custom Built v1.2
|
|
#4
| |||
| |||
| did a print screen for you so you can see what i mean i dont no the PATH of the file as it dont say in Ccleaner. its still there after a restart two
__________________ |
|
#5
| |||
| |||
| Create a Startup List 1. Open HijackThis and select Open the Misc Tools section 2. Click on the button which says Generate StartupList log 3. Click Yes when prompted and a notepad document will open. 4. Save the log to the desktop and attach it in the next post. |
|
#6
| |||
| |||
| sorry about the long wait ![]() StartupList report, 17/01/2009, 17:25:58 StartupList version: 1.52.2 Started from : C:\Users\Pete\Desktop\HijackThis.EXE Detected: Windows Vista (WinNT 6.00.1904) Detected: Internet Explorer v7.00 (7.00.6000.16386) * Using default options ================================================== Running processes: C:\Windows\system32\Dwm.exe C:\Windows\system32\taskeng.exe C:\Windows\Explorer.EXE C:\Program Files\Avast4\ashDisp.exe C:\Program Files\RocketDock\RocketDock.exe C:\Windows\ehome\ehtray.exe C:\Windows\System32\rundll32.exe C:\Windows\ehome\ehmsas.exe C:\Windows\system32\wbem\unsecapp.exe C:\Program Files\Winamp\winamp.exe C:\Windows\explorer.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Windows\system32\SearchFilterHost.exe C:\Users\Pete\Desktop\HijackThis.exe -------------------------------------------------- Checking Windows NT UserInit: [HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon] UserInit = C:\Windows\system32\userinit.exe, -------------------------------------------------- Autorun entries from Registry: HKLM\Software\Microsoft\Windows\CurrentVersion\Run Cmaudio = RunDll32 cmicnfg.cpl,CMICtrlWnd avast! = C:\PROGRA~1\Avast4\ashDisp.exe NvSvc = RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart NvCplDaemon = RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup NvMediaCenter = RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit -------------------------------------------------- Autorun entries from Registry: HKCU\Software\Microsoft\Windows\CurrentVersion\Run RocketDock = "C:\Program Files\RocketDock\RocketDock.exe" ehTray.exe = C:\Windows\ehome\ehTray.exe -------------------------------------------------- Autorun entries in Registry subkeys of: HKLM\Software\Microsoft\Windows\CurrentVersion\Run [OptionalComponents] = -------------------------------------------------- Shell & screensaver key from C:\Windows\SYSTEM.INI: Shell=*INI section not found* SCRNSAVE.EXE=*INI section not found* drivers=*INI section not found* Shell & screensaver key from Registry: Shell=explorer.exe SCRNSAVE.EXE=C:\Windows\system32\logon.scr drivers=*Registry value not found* Policies Shell key: HKCU\..\Policies: Shell=*Registry key not found* HKLM\..\Policies: Shell=*Registry value not found* -------------------------------------------------- Enumerating Browser Helper Objects: AcroIEHelperStub - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} (no name) - (no file) - {5C255C8A-E604-49b4-9D64-90988571CECB} (no name) - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} (no name) - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll - {9030D464-4C02-4ABF-8ECC-5164760863C6} -------------------------------------------------- Enumerating Download Program Files: [Shockwave Flash Object] InProcServer32 = C:\Windows\system32\Macromed\Flash\Flash10a.ocx CODEBASE = http://fpdownload2.macromedia.com/ge...sh/swflash.cab -------------------------------------------------- Enumerating Winsock LSP files: NameSpace #1: C:\Windows\system32\NLAapi.dll NameSpace #4: C:\Windows\system32\napinsp.dll NameSpace #5: C:\Windows\system32\pnrpnsp.dll NameSpace #6: C:\Windows\system32\pnrpnsp.dll -------------------------------------------------- Enumerating ShellServiceObjectDelayLoad items: WebCheck: C:\Windows\system32\webcheck.dll -------------------------------------------------- End of report, 4,466 bytes Report generated in 0.210 seconds Command line options: /verbose - to add additional info on each section /complete - to include empty sections and unsuspicious data /full - to include several rarely-important sections /force9x - to include Win9x-only startups even if running on WinNT /forcent - to include WinNT-only startups even if running on Win9x /forceall - to include all Win9x and WinNT startups, regardless of platform /history - to list version history only
__________________ |
|
#7
| |||
| |||
| That didn't show it. Download random's system information tool (RSIT) by random/random from and save it to your Desktop.
|
|
#8
| |||
| |||
| am running vista ultimate if that makes any diffrence ![]() Logfile of random's system information tool 1.05 (written by random/random) Run by Pete at 2009-01-18 00:45:36 Microsoft® Windows Vista™ Ultimate System drive C: has 66 GB (86%) free of 76 GB Total RAM: 767 MB (47% free) Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 00:45:49, on 18/01/2009 Platform: Windows Vista (WinNT 6.00.1904) MSIE: Internet Explorer v7.00 (7.00.6000.16386) Boot mode: Normal Running processes: C:\Windows\system32\Dwm.exe C:\Windows\system32\taskeng.exe C:\Windows\Explorer.EXE C:\Program Files\Avast4\ashDisp.exe C:\Program Files\RocketDock\RocketDock.exe C:\Windows\ehome\ehtray.exe C:\Windows\System32\rundll32.exe C:\Windows\ehome\ehmsas.exe C:\Windows\system32\wbem\unsecapp.exe C:\Windows\system32\SearchFilterHost.exe C:\Users\Pete\Desktop\RSIT.exe C:\Program Files\trend micro\Pete.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.co.uk/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O1 - Hosts: ::1 localhost O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.2.8.7.dll O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file) O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\Avast4\ashDisp.exe O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit O4 - HKCU\..\Run: [RocketDock] "C:\Program Files\RocketDock\RocketDock.exe" O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-18\..\Run: [DevconDefaultDB] C:\Windows\system32\READREG /SILENT /FAIL=1 (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [DevconDefaultDB] C:\Windows\system32\READREG /SILENT /FAIL=1 (User 'Default user') O8 - Extra context menu item: &D&ownload &with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm O8 - Extra context menu item: &D&ownload all video with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm O8 - Extra context menu item: &D&ownload all with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - (no file) O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Program Files\BitComet\tools\BitCometBHO_1.2.8.7.dll/206 (file missing) O13 - Gopher Prefix: O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/ge...sh/swflash.cab O22 - SharedTaskScheduler: Windows DreamScene - {E31004D1-A431-41B8-826F-E902F9D95C81} - C:\Windows\System32\DreamScene.dll O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Avast4\aswUpdSv.exe O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Avast4\ashServ.exe -- End of file - 4385 bytes ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}] Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Explorer\Browser Helper Objects\{39F7E362-828A-4B5A-BCAF-5B79BFDFEA60}] BitComet Helper - C:\Program Files\BitComet\tools\BitCometBHO_1.2.8.7.dll [2008-08-11 656696] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] SSVHelper Class - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll [2008-06-10 509328] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}] Windows Live Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2008-11-18 408952] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\Curr entVersion\Run] "Cmaudio"=RunDll32 cmicnfg.cpl [] "avast!"=C:\PROGRA~1\Avast4\ashDisp.exe [2008-07-19 78008] "NvSvc"=C:\Windows\system32\nvsvc.dll [2006-10-09 90191] "NvCplDaemon"=C:\Windows\system32\NvCpl.dll [2006-10-09 7741440] "NvMediaCenter"=C:\Windows\system32\NvMcTray.d ll [2006-10-09 81920] [HKEY_CURRENT_USER\Software\Microsoft\Windows\Curre ntVersion\Run] "RocketDock"=C:\Program Files\RocketDock\RocketDock.exe [2007-09-02 495616] "ehTray.exe"=C:\Windows\ehome\ehTray.exe [2006-11-02 125440] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTHelper] C:\Windows\system32\CTHELPER.EXE [2008-06-27 19456] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ehTray.exe] C:\Windows\ehome\ehTray.exe [2006-11-02 125440] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Monitor] C:\Windows\PixArt\PAC207\Monitor.exe [2006-11-03 319488] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched] C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe [2008-06-10 144784] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WindowFX] C:\Program Files\WindowFX\\wfxload.exe [2006-08-02 820912] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\CCleaner.exe] CCleaner.exe [] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\explorer\SharedTaskScheduler] Windows DreamScene - {E31004D1-A431-41B8-826F-E902F9D95C81} - C:\Windows\System32\DreamScene.dll [2009-01-17 122880] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\Curr entVersion\Policies\System] "EnableLUA"=0 "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 [HKEY_LOCAL_MACHINE\system\currentcontrolset\servic es\sharedaccess\parameters\firewallpolicy\standard profile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\servic es\sharedaccess\parameters\firewallpolicy\domainpr ofile\authorizedapplications\list] ======List of files/folders created in the last 1 months====== 2009-01-18 00:45:38 ----D---- C:\Program Files\trend micro 2009-01-18 00:45:36 ----D---- C:\rsit 2009-01-17 03:07:11 ----A---- C:\Windows\system32\wups2.dll 2009-01-17 03:07:11 ----A---- C:\Windows\system32\wucltux.dll 2009-01-17 03:07:11 ----A---- C:\Windows\system32\wuaueng.dll 2009-01-17 03:07:11 ----A---- C:\Windows\system32\wuauclt.exe 2009-01-17 03:05:59 ----A---- C:\Windows\system32\wudriver.dll 2009-01-17 03:05:58 ----A---- C:\Windows\system32\wups.dll 2009-01-17 03:05:58 ----A---- C:\Windows\system32\wuapi.dll 2009-01-17 03:05:09 ----A---- C:\Windows\system32\wuwebv.dll 2009-01-17 03:05:08 ----A---- C:\Windows\system32\wuapp.exe 2009-01-17 03:00:58 ----A---- C:\Windows\system32\DreamScene.dll 2009-01-17 03:00:57 ----A---- C:\Windows\system32\themecpl.dll 2009-01-17 02:58:34 ----HD---- C:\Windows\PIF 2009-01-17 02:03:02 ----D---- C:\Program Files\DreamRender 2009-01-17 01:14:02 ----A---- C:\Windows\system32\themecpl.dll.original 2009-01-16 11:23:49 ----A---- C:\Windows\system32\NVUNINST.EXE 2009-01-16 11:23:37 ----D---- C:\NVIDIA 2009-01-14 17:10:47 ----D---- C:\Program Files\Messenger Plus! Live 2009-01-14 17:04:20 ----D---- C:\Program Files\Microsoft 2009-01-14 17:03:57 ----D---- C:\Program Files\Windows Live SkyDrive 2009-01-14 17:03:34 ----D---- C:\Program Files\Windows Live 2009-01-14 17:03:13 ----D---- C:\Windows\PCHEALTH 2009-01-14 17:00:45 ----D---- C:\Program Files\Common Files\Windows Live 2009-01-13 19:25:18 ----D---- C:\ProgramData\NCH Software 2009-01-13 19:24:57 ----D---- C:\ProgramData\NCH Swift Sound 2009-01-13 19:24:57 ----D---- C:\Program Files\NCH Software 2009-01-13 19:24:14 ----D---- C:\Program Files\NCH Swift Sound 2009-01-13 19:15:59 ----D---- C:\Windows\system32\ffdshow 2009-01-13 19:15:56 ----D---- C:\Program Files\DVD Maker 2009-01-13 19:13:44 ----A---- C:\Windows\system32\ssubtmr6.dll 2009-01-13 19:04:31 ----D---- C:\Windows\pss 2009-01-13 19:02:42 ----D---- C:\Program Files\CCleaner 2009-01-13 18:57:34 ----D---- C:\Program Files\Common Files\Adobe AIR 2009-01-13 18:56:17 ----D---- C:\ProgramData\Adobe 2009-01-13 18:55:56 ----D---- C:\Program Files\Common Files\Adobe 2009-01-13 18:55:56 ----D---- C:\Program Files\Adobe 2009-01-13 09:52:52 ----D---- C:\Program Files\TagScanner 2009-01-12 17:44:55 ----A---- C:\Windows\system32\imageres.dll 2009-01-12 17:34:08 ----D---- C:\ProgramData\Stardock 2009-01-12 17:33:59 ----A---- C:\Windows\system32\wbhelp2.dll 2009-01-12 17:33:57 ----D---- C:\Program Files\Stardock 2009-01-12 14:11:34 ----D---- C:\Program Files\CodeGazer 2009-01-11 18:13:06 ----D---- C:\Users\Pete\AppData\Roaming\WinRAR 2009-01-11 18:11:45 ----D---- C:\Program Files\WinRAR 2009-01-11 18:03:17 ----D---- C:\Program Files\VistaCodecPack 2009-01-11 18:01:39 ----D---- C:\ProgramData\VistaCodecs 2009-01-11 12:04:00 ----D---- C:\Windows\Panther 2009-01-11 12:03:48 ----RAS---- C:\BOOTSECT.BAK 2009-01-11 12:03:45 ----SHD---- C:\Boot 2009-01-11 12:03:23 ----D---- C:\Windows\system32\OEM 2009-01-11 10:33:48 ----D---- C:\Users\Pete\AppData\Roaming\Macromedia 2009-01-11 10:33:48 ----D---- C:\Users\Pete\AppData\Roaming\Adobe 2009-01-11 10:32:35 ----D---- C:\Windows\system32\Macromed 2009-01-11 10:00:53 ----D---- C:\Users\Pete\AppData\Roaming\Mozilla 2009-01-11 10:00:38 ----D---- C:\Program Files\Mozilla Firefox 2009-01-11 09:58:20 ----RD---- C:\Downloads 2009-01-11 09:42:12 ----D---- C:\Program Files\Common Files\SWF Studio 2009-01-11 09:42:09 ----A---- C:\Windows\system32\GTW32N50.dll 2009-01-11 09:41:37 ----D---- C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor 2009-01-11 09:41:28 ----A---- C:\Windows\system32\WLAN.INI 2009-01-11 09:39:13 ----D---- C:\Users\Pete\AppData\Roaming\vlc 2009-01-11 08:38:01 ----D---- C:\Program Files\RocketDock 2009-01-11 08:36:05 ----D---- C:\Program Files\Motherboard Monitor 5 2009-01-11 08:30:29 ----D---- C:\Program Files\JRE 2009-01-11 08:30:20 ----D---- C:\Program Files\OpenOffice.org 3 2009-01-11 08:29:35 ----A---- C:\Windows\system32\javaws.exe 2009-01-11 08:29:35 ----A---- C:\Windows\system32\javaw.exe 2009-01-11 08:29:35 ----A---- C:\Windows\system32\java.exe 2009-01-11 08:28:25 ----D---- C:\Program Files\Common Files\Java 2009-01-11 08:26:32 ----D---- C:\Program Files\readmes 2009-01-11 08:26:32 ----D---- C:\Program Files\licenses 2009-01-11 08:26:32 ----D---- C:\Program Files\java 2009-01-11 08:24:53 ----D---- C:\Program Files\EVEREST Home Edition 2009-01-11 08:22:47 ----D---- C:\Users\Pete\AppData\Roaming\Malwarebytes 2009-01-11 08:22:43 ----D---- C:\ProgramData\Malwarebytes 2009-01-11 08:22:42 ----D---- C:\Program Files\Malwarebytes' Anti-Malware 2009-01-11 08:14:27 ----D---- C:\Program Files\PeerGuardian2 2009-01-11 08:13:39 ----D---- C:\Program Files\BitComet 2009-01-11 08:08:16 ----D---- C:\Program Files\MagicISO 2009-01-11 06:35:43 ----A---- C:\Windows\WORDPAD.INI 2009-01-11 06:35:07 ----A---- C:\Windows\system32\MSVCR71.dll 2009-01-11 06:35:07 ----A---- C:\Windows\system32\MSVCP71.dll 2009-01-11 06:35:07 ----A---- C:\Windows\system32\MFC71.dll 2009-01-11 06:35:07 ----A---- C:\Windows\system32\aswBoot.exe 2009-01-11 06:35:04 ----D---- C:\Program Files\Avast4 2009-01-11 06:32:04 ----D---- C:\Program Files\VirtualDJ 2009-01-11 06:06:14 ----A---- C:\Windows\windowfx3.ini 2009-01-11 06:05:38 ----A---- C:\Windows\windowfx2.ini 2009-01-11 06:02:03 ----D---- C:\Program Files\WindowFX 2009-01-11 06:00:11 ----D---- C:\Program Files\VCLplayer 2009-01-11 05:28:26 ----AD---- C:\ProgramData\TEMP 2009-01-11 05:28:19 ----D---- C:\Program Files\Common Files\DeskShare Shared 2009-01-11 05:28:18 ----A---- C:\Windows\system32\Unicows.dll 2009-01-11 05:28:15 ----D---- C:\Program Files\Video Edit Magic 4.4 2009-01-11 05:24:47 ----D---- C:\Users\Pete\AppData\Roaming\Winamp 2009-01-11 05:24:47 ----D---- C:\Program Files\Winamp 2009-01-11 05:21:49 ----D---- C:\Program Files\X box controller 2009-01-11 05:19:45 ----A---- C:\Windows\system32\Remover.ini 2009-01-11 05:19:45 ----A---- C:\Windows\system32\Remove.exe 2009-01-11 05:19:44 ----D---- C:\Windows\PixArt 2009-01-11 05:19:43 ----D---- C:\Program Files\Trust 2009-01-11 05:19:43 ----D---- C:\Program Files\Common Files\PAC207 2009-01-11 05:19:20 ----D---- C:\Windows\Downloaded Installations 2009-01-11 05:19:18 ----SHD---- C:\Windows\Installer 2009-01-11 05:01:45 ----D---- C:\Windows\system32\Defaults 2009-01-11 05:01:12 ----D---- C:\Program Files\Creative 2009-01-11 05:00:38 ----A---- C:\Windows\system32\wrap_oal.dll 2009-01-11 05:00:38 ----A---- C:\Windows\system32\OpenAL32.dll 2009-01-11 05:00:37 ----A---- C:\Windows\system32\CmdRtr.DLL 2009-01-11 05:00:37 ----A---- C:\Windows\system32\APOMngr.DLL 2009-01-11 04:59:10 ----D---- C:\Windows\system32\Data 2009-01-11 04:58:57 ----HD---- C:\Program Files\InstallShield Installation Information 2009-01-11 04:58:54 ----D---- C:\Program Files\Common Files\InstallShield 2009-01-11 04:40:27 ----A---- C:\Windows\system32\udaprop.dll 2009-01-11 04:40:27 ----A---- C:\Windows\system32\cmuda.dll 2009-01-11 04:40:27 ----A---- C:\Windows\system32\cmirmdrv.exe 2009-01-11 04:40:27 ----A---- C:\Windows\system32\cmirmdrv.dll 2009-01-11 04:40:26 ----A---- C:\Windows\system32\Audio3D.dll 2009-01-11 04:18:37 ----SD---- C:\Users\Pete\AppData\Roaming\Microsoft 2009-01-11 04:18:37 ----D---- C:\Users\Pete\AppData\Roaming\Media Center Programs 2009-01-11 04:08:42 ----D---- C:\Windows\SoftwareDistribution 2009-01-11 04:06:17 ----D---- C:\Windows\Debug 2009-01-11 04:06:17 ----D---- C:\Windows\CSC 2009-01-11 04:04:49 ----D---- C:\Windows\Prefetch 2009-01-11 04:04:39 ----SHD---- C:\System Volume Information 2008-12-24 12:05:52 ----A---- C:\Windows\system32\VSFilter.dll ======List of files/folders modified in the last 1 months====== 2009-01-18 00:45:38 ----RD---- C:\Program Files 2009-01-17 21:09:29 ----D---- C:\Windows\Temp 2009-01-17 12:36:45 ----D---- C:\Windows\System32 2009-01-17 12:36:45 ----D---- C:\Windows\inf 2009-01-17 12:36:45 ----A---- C:\Windows\system32\PerfStringBackup.INI 2009-01-17 03:09:17 ----D---- C:\Windows\rescache 2009-01-17 03:09:07 ----D---- C:\Windows\winsxs 2009-01-17 03:09:06 ----D---- C:\Windows\system32\en-US 2009-01-17 03:08:15 ----D---- C:\Windows\PolicyDefinitions 2009-01-17 03:06:59 ----D---- C:\Windows\system32\catroot 2009-01-17 03:01:41 ----D---- C:\Windows 2009-01-17 01:14:02 ----D---- C:\Windows\Web 2009-01-17 00:00:57 ----A---- C:\Windows\win.ini 2009-01-16 16:37:32 ----D---- C:\Windows\twain_32 2009-01-16 16:37:32 ----D---- C:\Windows\system32\drivers 2009-01-16 13:07:20 ----D---- C:\Windows\Cursors 2009-01-16 11:24:29 ----D---- C:\Windows\Help 2009-01-16 11:24:19 ----D---- C:\Windows\system32\catroot2 2009-01-14 20:45:32 ----D---- C:\Windows\system32\WDI 2009-01-14 17:53:04 ----SD---- C:\Windows\Downloaded Program Files 2009-01-14 17:04:03 ----D---- C:\Program Files\Common Files\microsoft shared 2009-01-14 17:00:45 ----D---- C:\Program Files\Common Files 2009-01-14 17:00:20 ----SD---- C:\ProgramData\Microsoft 2009-01-13 19:25:18 ----HD---- C:\ProgramData 2009-01-12 14:12:47 ----A---- C:\Windows\system32\uxtheme.dll 2009-01-12 14:12:46 ----A---- C:\Windows\system32\themeui.dll 2009-01-12 14:12:46 ----A---- C:\Windows\system32\shsvcs.dll 2009-01-11 18:17:51 ----RD---- C:\Users 2009-01-11 18:03:08 ----D---- C:\Windows\system32\LogFiles 2009-01-11 08:32:23 ----RSD---- C:\Windows\assembly 2009-01-11 08:30:49 ----RSD---- C:\Windows\Fonts 2009-01-11 05:01:44 ----D---- C:\Program Files\Windows Media Player 2009-01-11 05:01:44 ----D---- C:\Program Files\Common Files\System 2009-01-11 05:01:43 ----D---- C:\Program Files\Windows Sidebar 2009-01-11 04:40:47 ----D---- C:\Windows\system 2009-01-11 04:36:44 ----D---- C:\Windows\system32\restore 2009-01-11 04:28:00 ----D---- C:\Windows\system32\CodeIntegrity 2009-01-11 04:19:29 ----SHD---- C:\$Recycle.Bin 2009-01-11 04:04:39 ----D---- C:\Windows\system32\config ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2008-07-19 23152] R1 aswSP;avast! Self Protection; C:\Windows\system32\drivers\aswSP.sys [2008-07-19 78416] R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2008-07-19 42912] R1 CSC;Offline Files Driver; C:\Windows\system32\drivers\csc.sys [2006-11-02 319488] R2 aswFsBlk;aswFsBlk; C:\Windows\system32\DRIVERS\aswFsBlk.sys [2008-07-19 20560] R2 aswMonFlt;aswMonFlt; C:\Windows\system32\DRIVERS\aswMonFlt.sys [2008-07-19 51280] R2 mbmiodrvr;mbmiodrvr; \??\C:\Windows\system32\mbmiodrvr.sys [2004-04-10 2944] R3 COMMONFX.SYS;COMMONFX.SYS; C:\Windows\System32\drivers\COMMONFX.SYS [2008-06-27 99352] R3 ctac32k;Creative AC3 Software Decoder; C:\Windows\system32\drivers\ctac32k.sys [2008-07-07 511000] R3 ctaud2k;Creative Audio Driver (WDM); C:\Windows\system32\drivers\ctaud2k.sys [2008-07-07 532376] R3 CTAUDFX.SYS;CTAUDFX.SYS; C:\Windows\System32\drivers\CTAUDFX.SYS [2008-06-27 555032] R3 ctprxy2k;Creative Proxy Driver; C:\Windows\system32\drivers\ctprxy2k.sys [2008-07-07 14360] R3 CTSBLFX.SYS;CTSBLFX.SYS; C:\Windows\System32\drivers\CTSBLFX.SYS [2008-06-27 566296] R3 ctsfm2k;Creative SoundFont Management Device Driver; C:\Windows\system32\drivers\ctsfm2k.sys [2008-07-07 157208] R3 emupia;E-mu Plug-in Architecture Driver; C:\Windows\system32\drivers\emupia2k.sys [2008-07-07 92696] R3 ha10kx2k;Creative Hardware Abstract Layer Driver; C:\Windows\system32\drivers\ha10kx2k.sys [2008-07-07 797720] R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2006-10-09 4428160] R3 ossrv;Creative OS Services Driver; C:\Windows\system32\drivers\ctoss2k.sys [2008-07-07 127512] R3 PAC207;Trust WB-1400T Webcam; C:\Windows\system32\DRIVERS\PFC027.SYS [2007-05-14 508288] R3 USB_RNDIS;Linksys Wireless-G USB Network Adapter with SpeedBooster Driver v2; C:\Windows\system32\DRIVERS\usb8023.sys [2006-11-02 14848] S3 cmuda;C-Media WDM Audio Interface; C:\Windows\system32\drivers\cmuda.sys [2006-10-29 815296] S3 COMMONFX;COMMONFX; C:\Windows\system32\drivers\COMMONFX.SYS [2008-06-27 99352] S3 CTAUDFX;CTAUDFX; C:\Windows\system32\drivers\CTAUDFX.SYS [2008-06-27 555032] S3 ctdvda2k;Creative DVD-Audio Device Driver; C:\Windows\system32\drivers\ctdvda2k.sys [2008-07-07 347080] S3 CTERFXFX.SYS;CTERFXFX.SYS; C:\Windows\System32\drivers\CTERFXFX.SYS [2008-06-27 100888] S3 CTERFXFX;CTERFXFX; C:\Windows\system32\drivers\CTERFXFX.SYS [2008-06-27 100888] S3 CTSBLFX;CTSBLFX; C:\Windows\system32\drivers\CTSBLFX.SYS [2008-06-27 566296] S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2006-11-02 5632] S3 hap16v2k;Creative P16V HAL Driver; C:\Windows\system32\drivers\hap16v2k.sys [2008-07-07 162840] S3 hap17v2k;Creative P17V HAL Driver; C:\Windows\system32\drivers\hap17v2k.sys [2008-07-07 189464] S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2006-11-02 8192] S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2006-11-02 5888] S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2006-11-02 5504] S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2006-11-02 6016] S3 nv;nv; C:\Windows\system32\DRIVERS\nv4_mini.sys [2006-11-02 1897664] S3 SISNIC;SiS PCI Fast Ethernet Adapter Driver; C:\Windows\system32\DRIVERS\sisnic.sys [2006-11-02 35328] S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2006-11-02 82560] S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys [2006-11-02 11264] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Avast4\aswUpdSv.exe [2008-07-19 16056] R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Avast4\ashServ.exe [2008-07-19 147640] S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2006-11-02 22016] S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2006-11-02 22016] S3 wbengine;@%systemroot%\system32\wbengine.exe,-104; C:\Windows\system32\wbengine.exe [2006-11-02 562176] S4 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Avast4\ashWebSv.exe [2008-07-23 348344] S4 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2006-11-02 22016] S4 WUSB54GSv2SVC;WUSB54GSv2SVC; C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WLService.exe [2005-07-04 53307] -----------------EOF----------------- info.txt logfile of random's system information tool 1.05 2009-01-18 00:45:53 ======Uninstall list====== -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\ 01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7B9AE66C-2A8F-4FB2-85D7-416AFFAE8408}\setup.exe" -l0x9 Acrobat.com-->C:\Program Files\Common Files\Adobe AIR\Versions\1.0\Adobe AIR Application Installer.exe -uninstall com.adobe.mauby 4875E02D9FB21EE389F73B8D1702B320485DF8CE.1 Acrobat.com-->MsiExec.exe /I{77DCDCE3-2DED-62F3-8154-05E745472D07} Adobe AIR-->C:\Program Files\Common Files\Adobe AIR\Versions\1.0\Adobe AIR Updater.exe -arp:uninstall Adobe AIR-->MsiExec.exe /I{00203668-8170-44A0-BE44-B632FA4D780F} Adobe Flash Player 10 ActiveX-->C:\Windows\system32\Macromed\Flash\uninstall_acti veX.exe Adobe Flash Player 10 Plugin-->C:\Windows\system32\Macromed\Flash\uninstall_plug in.exe Adobe Reader 9-->MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A90000000001} avast! Antivirus-->C:\Program Files\Avast4\aswRunDll.exe "C:\Program Files\Avast4\Setup\setiface.dll",RunSetup BitComet 1.06-->C:\Program Files\BitComet\uninst.exe CCleaner (remove only)-->"C:\Program Files\CCleaner\uninst.exe" Choice Guard-->MsiExec.exe /I{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E} C-Media WDM Audio Driver-->C:\Windows\system32\cmirmdrv.exe Creative Audio Console-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\ 01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7B9AE66C-2A8F-4FB2-85D7-416AFFAE8408}\setup.exe" -l0x9 /remove EVEREST Home Edition v2.20-->"C:\Program Files\EVEREST Home Edition\unins000.exe" Express Burn-->C:\Program Files\NCH Swift Sound\ExpressBurn\uninst.exe Express Rip-->C:\Program Files\NCH Swift Sound\ExpressRip\uninst.exe HijackThis 2.0.2-->"C:\Users\Pete\Desktop\HijackThis.exe" /uninstall Java(TM) 6 Update 7-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160070} Linksys Wireless-G USB Network Adapter-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ct or.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C7EEF2B9-8C16-4A04-B98D-B1A952A47E55}\setup.exe" -l0x9 LogonStudio Vista-->C:\PROGRA~1\Stardock\OBJECT~1\LOGONS~1\UNWISE.E XE C:\PROGRA~1\Stardock\OBJECT~1\LOGONS~1\INSTALL.LOG Macromedia Flash Player 8-->RunDll32 advpack.dll,LaunchINFSection C:\Windows\INF\swflash.inf,DefaultUninstall,5 Magic ISO Maker v5.4 (build 0239)-->C:\PROGRA~1\MagicISO\UNWISE.EXE C:\PROGRA~1\MagicISO\INSTALL.LOG Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe" Messenger Plus! Live-->"C:\Program Files\Messenger Plus! Live\Uninstall.exe" Motherboard Monitor 5-->"C:\Program Files\Motherboard Monitor 5\unins000.exe" Mozilla Firefox (3.0.5)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94} NS Virtual DJ 6.0 Full-->"C:\Program Files\VirtualDJ\unins000.exe" OpenOffice.org 3.0-->MsiExec.exe /I{F44DA61E-720D-4E79-871F-F6E628B33242} PeerGuardian 2.0-->"C:\Program Files\PeerGuardian2\unins000.exe" RocketDock 1.3.5-->"C:\Program Files\RocketDock\unins000.exe" Sothink Movie DVD Maker-->"C:\Program Files\DVD Maker\unins000.exe" TagScanner 5.0 build 525-->"C:\Program Files\TagScanner\unins000.exe" Trust WB-1400T Webcam-->C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\9\INTEL3~1\I Driver.exe /M{30837A37-8F9F-4817-8B52-C501B67DC3BE} /l1033 Video Edit Magic 4.4-->"C:\Program Files\Video Edit Magic 4.4\Video Edit Magic 4.4\unins000.exe" Vista Codec Package-->MsiExec.exe /I{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99} VistaGlazz 1.1-->"C:\Program Files\CodeGazer\VistaGlazz\unins000.exe" VLC media player 0.9.4-->C:\Program Files\VCLplayer\VLC\uninstall.exe Winamp-->"C:\Program Files\Winamp\UninstWA.exe" WindowFX-->C:\PROGRA~1\WindowFX\UNWISE.EXE C:\PROGRA~1\WindowFX\INSTALL.LOG Windows Live Call-->MsiExec.exe /I{020D8396-D6D9-4B53-A9A1-83C47E2E27AA} Windows Live Communications Platform-->MsiExec.exe /I{F69E83CF-B440-43F8-89E6-6EA80712109B} Windows Live Essentials-->C:\Program Files\Windows Live\Installer\wlarp.exe Windows Live Essentials-->MsiExec.exe /I{D9D754A1-EAC5-406C-A28B-C49B1E846711} Windows Live Messenger-->MsiExec.exe /X{0AAA9C97-74D4-47CE-B089-0B147EF3553C} Windows Live Sign-in Assistant-->MsiExec.exe /I{505DF7A3-88D5-4DD6-9AD5-C98C2ED0CEC4} Windows Live Upload Tool-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238} WinRAR archiver-->C:\Program Files\WinRAR\uninstall.exe Xbox controller 1.07-->C:\Program Files\X box controller\uninst.exe ======Security center information====== AV: avast! antivirus 4.8.1229 [VPS 090117-0] AS: Windows Defender AS: avast! antivirus 4.8.1229 [VPS 090117-0] System event log Computer Name: Pete-PC Event Code: 7036 Message: The Windows Image Acquisition (WIA) service entered the stopped state. Record Number: 4058 Source Name: Service Control Manager Time Written: 20090117210151.000000-000 Event Type: Information User: Computer Name: Pete-PC Event Code: 4226 Message: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts. Record Number: 4059 Source Name: Tcpip Time Written: 20090117230324.222440-000 Event Type: Warning User: Computer Name: Pete-PC Event Code: 10029 Message: DCOM started the service stisvc with arguments "" in order to run the server: {A1F4E726-8CF1-11D1-BF92-0060081ED811} Record Number: 4060 Source Name: Microsoft-Windows-DistributedCOM Time Written: 20090118003132.000000-000 Event Type: Information User: Computer Name: Pete-PC Event Code: 7036 Message: The Windows Image Acquisition (WIA) service entered the running state. Record Number: 4061 Source Name: Service Control Manager Time Written: 20090118003136.000000-000 Event Type: Information User: Computer Name: Pete-PC Event Code: 7036 Message: The Windows Image Acquisition (WIA) service entered the stopped state. Record Number: 4062 Source Name: Service Control Manager Time Written: 20090118003512.000000-000 Event Type: Information User: Application event log Computer Name: Pete-PC Event Code: 1 Message: Certificate Services Client has been started successfully. Record Number: 870 Source Name: Microsoft-Windows-CertificateServicesClient Time Written: 20090117121402.151441-000 Event Type: Information User: Pete-PC\Pete Computer Name: Pete-PC Event Code: 3036 Message: The content source <csc://{s-1-5-21-1313754427-3454831117-1373015682-1000}/> cannot be accessed. Context: Windows Application, SystemIndex Catalog Details: The object was not found. (0x80041201) Record Number: 871 Source Name: Microsoft-Windows-Search Time Written: 20090117121927.000000-000 Event Type: Warning User: Computer Name: Pete-PC Event Code: 3036 Message: The content source <csc://{s-1-5-21-1313754427-3454831117-1373015682-1000}/> cannot be accessed. Context: Windows Application, SystemIndex Catalog Details: The object was not found. (0x80041201) Record Number: 872 Source Name: Microsoft-Windows-Search Time Written: 20090117121933.000000-000 Event Type: Warning User: Computer Name: Pete-PC Event Code: 1001 Message: Performance counters for the WmiApRpl (WmiApRpl) service were removed successfully. The Record Data contains the new values of the system Last Counter and Last Help registry entries. Record Number: 873 Source Name: Microsoft-Windows-LoadPerf Time Written: 20090117123645.000000-000 Event Type: Information User: Computer Name: Pete-PC Event Code: 1000 Message: Performance counters for the WmiApRpl (WmiApRpl) service were loaded successfully. The Record Data in the data section contains the new index values assigned to this service. Record Number: 874 Source Name: Microsoft-Windows-LoadPerf Time Written: 20090117123645.000000-000 Event Type: Information User: Security event log Computer Name: Pete-PC Event Code: 5032 Message: Windows Firewall was unable to notify the user that it blocked an application from accepting incoming connections on the network. Error Code: 2 Record Number: 1684 Source Name: Microsoft-Windows-Security-Auditing Time Written: 20090117174713.073408-000 Event Type: Audit Failure User: Computer Name: Pete-PC Event Code: 5032 Message: Windows Firewall was unable to notify the user that it blocked an application from accepting incoming connections on the network. Error Code: 2 Record Number: 1685 Source Name: Microsoft-Windows-Security-Auditing Time Written: 20090117190330.923801-000 Event Type: Audit Failure User: Computer Name: Pete-PC Event Code: 5032 Message: Windows Firewall was unable to notify the user that it blocked an application from accepting incoming connections on the network. Error Code: 2 Record Number: 1686 Source Name: Microsoft-Windows-Security-Auditing Time Written: 20090117190334.127019-000 Event Type: Audit Failure User: Computer Name: Pete-PC Event Code: 5032 Message: Windows Firewall was unable to notify the user that it blocked an application from accepting incoming connections on the network. Error Code: 2 Record Number: 1687 Source Name: Microsoft-Windows-Security-Auditing Time Written: 20090117190334.127019-000 Event Type: Audit Failure User: Computer Name: Pete-PC Event Code: 5032 Message: Windows Firewall was unable to notify the user that it blocked an application from accepting incoming connections on the network. Error Code: 2 Record Number: 1688 Source Name: Microsoft-Windows-Security-Auditing Time Written: 20090117190334.127019-000 Event Type: Audit Failure User: ======Environment variables====== "ComSpec"=%SystemRoot%\system32\cmd.exe "FP_NO_HOST_CHECK"=NO "OS"=Windows_NT "Path"=%SystemRoot%\system32;%SystemRoot%;%SystemR oot%\System32\Wbem "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;. WSF;.WSH;.MSC "PROCESSOR_ARCHITECTURE"=x86 "TEMP"=%SystemRoot%\TEMP "TMP"=%SystemRoot%\TEMP "USERNAME"=SYSTEM "windir"=%SystemRoot% "PROCESSOR_LEVEL"=6 "PROCESSOR_IDENTIFIER"=x86 Family 6 Model 10 Stepping 0, AuthenticAMD "PROCESSOR_REVISION"=0a00 "NUMBER_OF_PROCESSORS"=1 -----------------EOF-----------------
__________________ |
|
#9
| |||
| |||
| Scan Suspicious File(s) Please go to VirusTotal.com (If more than one file needs scanned they must be done separately and logs posted for each one) 1. Copy the file path in the below Code box: Code: C:\Windows\system32\Remove.exe 3. Press Ctrl+V on the keyboard (both at the same time) to paste the file path into the window. 4. Next click Send File Your file will possibly be entered into a queue which normally takes less than a minute to clear. This will perform a scan across multiple different virus scanning engines. Important: Wait for all of the scanning engines to complete. 5. Copy and then Paste the link to the results in the next reply. ---------- Your Java is out of date. Older versions have vulnerabilities that malicious sites can use to infect your system. First install the new Sun Java Runtime Environment Be sure to close all browser windows before beginning the install. Remove the old version(s) Download JavaRa
|
|
#10
| |||
| |||
|
__________________ |
![]() |
|
| Bookmarks |
Similar Threads | ||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| Startup Application Help - Insert an .exe file so that it will startup with windows | Sasstraliss | Windows Operating Systems | 1 | 4th May 2009 09:52 |
| CCleaner 2.15.815 | evilfantasy | General Software Chat | 0 | 22nd Dec 2008 16:59 |
| CCleaner v2.14 | evilfantasy | General Software Chat | 1 | 1st Dec 2008 09:57 |
| Speedstream modem showing not connected, computer showing is | ScottAU | Networking, Modems & VoIP | 1 | 9th Sep 2008 15:56 |
| CCleaner 2.08.588 | evilfantasy | General Software Chat | 6 | 26th Jun 2008 09:28 |
| Thread Tools | |
| |